Smart eVision has a path traversal vulnerability in the Report API function due to insufficient filtering for special characters in URLs. A remote attacker with general user privilege can exploit this ...
Continue ReadingSeptember 27, 2022
The Knot Resolver is a DNSSEC-enabled caching full resolver implementation written in C and LuaJIT, including both a resolver library and a daemon. Modular architecture of the library keeps the core t ...
Continue ReadingSeptember 27, 2022
Strapi before 3.6.10 and 4.x before 4.1.10 mishandles hidden attributes within admin API responses.Read More ...
Continue ReadingSeptember 27, 2022
Zammad 5.2.1 is vulnerable to Incorrect Access Control. Zammad's asset handling mechanism has logic to ensure that customer users are not able to see personal information of other users. This logic wa ...
Continue ReadingSeptember 27, 2022
mailcow is a mailserver suite. A vulnerability innversions prior to 2022-09 allows an attacker to craft a custom Swagger API template to spoof Authorize links. This could redirect a victim to an attac ...
Continue ReadingSeptember 27, 2022
An update that fixes 6 vulnerabilities is now available. Description: This update for opera fixes the following issues: Update to 91.0.4516.20 - CHR-9019 Update chromium on desktop-stable-1 ...
Continue ReadingSeptember 27, 2022
## Imperva and Kong are working together to simplify APIs Imperva is attending Kongs 2022 Summit on September 28 and 29 in San Francisco. Impervas Summit booth will feature both a recorded and liv ...
Continue ReadingSeptember 27, 2022
[![Optus Breach](https://thehackernews.com/new-images/img/b/R29vZ2xl/AVvXsEihFmktRXvJGz2Fw4WdANucjW-D7-NoeIX78ycqoWY3Bc8Ut4Us5vOUoplkFBIImAKlPxd0VndUDIwjipbTbEV_UFUY-ktp0_cV5_9xQUvdQjAvWVgyfFek0DNSu7_ ...
Continue ReadingSeptember 27, 2022
Back to Main